The classifier judged this item not relevant to AI security, so it is left out of lists, feeds, the API and dataset releases. If that is wrong, report a correction on this page.
GHSA-j6cw-g6p4-7hch: Argo CD repo-server command injection via crafted SSH repository SOCKS5 proxy URL
- Identifiers
- CVE-2026-55797GHSA-j6cw-g6p4-7hch
- Published
- Record updated
Summary
Argo CD's repo-server runs a shell command when it clones or fetches an SSH Git repository that has a SOCKS5, HTTP, or HTTPS proxy URL set, because the proxy host and port are copied into an SSH ProxyCommand. Shell metacharacters in the host break out of that command, so anyone who can create or update a repository or repository credential template can execute commands in the repo-server, which can read other stored Git, Helm, and OCI credentials. All versions from v2.11.0 onward are affected, introduced by commit 9b27aeb1a4 (#15864), and v2.10.20 and earlier are not affected.
Mitigation
Upgrade to a patched release: v3.6.0-rc2, v3.5.4, v3.4.10, or v3.3.15. Argo CD 2.x and 3.0 through 3.2 are out of support and will not receive a patch. No setting removes the shell command while keeping SSH repository proxies; the source's workarounds are to avoid granting repository create or update to untrusted users, including project-scoped repository access, and not to set a proxy on SSH repositories or on credential templates matching SSH repositories, and to review existing repository and credential-template Secrets for unexpected proxy values.